pypi

aniresolve @0.0.1

Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 4:36 PM UTC

Malicious

OSV ID

MAL-2026-1543

Ecosystem

pypi

Summary

Package hides code that downloads and runs malware, likely an infostealer. The code is not directly called in the package suggesting it's a dependency or next stage in the infection chain. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-03-anistream Reasons (based on the campaign): - Downloads and executes a remote executable. - infostealer - malware

Source: kam193 (c29943544c9e6ba7e0a3075c393fa1fa89673c99b73634c0263ef164e52ac306)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.